Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6cj3-78w9-39gx

Опубликовано: 11 янв. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 8.3

Описание

Multiple SQL Injection vulnerabilities exist in the reporting application. A user with advanced report application access rights can exploit the SQL injection, allowing them to execute commands on the underlying operating system with elevated privileges.

Multiple SQL Injection vulnerabilities exist in the reporting application. A user with advanced report application access rights can exploit the SQL injection, allowing them to execute commands on the underlying operating system with elevated privileges.

EPSS

Процентиль: 68%
0.00568
Низкий

8.3 High

CVSS3

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 8.3
nvd
около 1 года назад

Multiple SQL Injection vulnerabilities exist in the reporting application. A user with advanced report application access rights can exploit the SQL injection, allowing them to execute commands on the underlying operating system with elevated privileges.

EPSS

Процентиль: 68%
0.00568
Низкий

8.3 High

CVSS3

Дефекты

CWE-89